A guest with a PCI device assigned that has at least a BAR on the IO port
space can trigger a BUG() in Xen.
Xen versions 4.6 and later are vulnerable. This is known to be the case
with the fix for XSA-491, but it's possible the issue can also be
triggered from other, non-analyzed paths.
Only x86 systems are vulnerable. Arm systems are not vulnerable.
Only HVM guests with a PCI device with IO BARs assigned can leverage the
vulnerability.
There is no mitigation available.